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AMENDMENTS TO THE CLAIMS 

Please amend the claims as follows. 

1 . (Currently Amended) A method of controlling access to resources, said method comprising: 

storing a policy decision for a resource in local memory, said policy decision received 
from a remote source of policy definitions, said policy decision based on a policy 
definition governing access to said resource and on requestor identifying 
information provided to said remote source; 

receiving a first request for access to said resource, said first request comprising said 
requestor identifying information;-aftd 

evaluating said first request using said policy decision in said local memory inst e ad of 
r e f e rring said first request to said sourc e for e valuation ; 

receiving a notification from said remote source that said policy decision in said local 
memory is affected by a change in said policy definition; 

receiving a second request for access to said resource; and 

evaluating said second request based on said notification . 

2. (Currently Amended) The method of Claim 1 wherein said resource is affiliated with another 
resource, and wherein further a policy decision for said other resource is received from said 
remote source and stored in said local memory. 

3. (Canceled) 

4. (Currently Amended) The method of Claim 1$ wherein said notification identifies resources 
affected by said change. 

5. (Currently Amended) The method of Claim 31, wherein 

receiving said notification further comprises storing an updated version of said policy 
decision in said local memory, wherein said notification alse comprises m said 
updated version of said policy decision , and wherein said updated version of said 
policy decision is based on said change ; and 
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evaluating said second request further comprises using said updated version of said 
policy decision in said local memory . 

6. (Currently Amended) The method of Claim 13- further comprising: , wherein 

receiving said notification further comprises marking said policy decision subject to said 
change; and 

evaluating said second request further comprises requesting an updated version of said 
policy decision in respons e to a subsequ e nt r e qu e st for said r e sourc e. 

7. (Currently Amended) The method of Claim 1 further comprising: 

sending a message to said remote source, said message requesting updates for policy 
decisions stored in said local memory. 

8. (Currently Amended) The method of Claim 1 wherein a period of time said policy decision 
is valid is also received from said remote source and stored locally. 

9. (Currently Amended) The method of Claim 1 wherein a condition associated with said 
policy definition is also received from said remote source and stored locally, wherein said 
condition is enforced locally. 

10. (Currently Amended) A method of controlling access to resources, said method comprising: 

receiving a first request for access to a resource, said first request comprising requestor 
identifying information, wherein said first request is referred to a remote source 
of a policy definition that governs access to said resource for evaluation; 

receiving from said remote source a policy decision for said resource, said policy 
decision based on said policy definition and said requestor identifying 
information; and 

storing said policy decision in local memory, wherein a subsequent second request for 

access to said resource is evaluated locally using said policy decision stored in 

said local memory ; and 
receiving a notification fro m said remote source that said policy decision is affected by a 

change in said p olicy definition, wherein a third request for access to said 

resource is evaluated based on said notification . 
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11. (Currently Amended) The method of Claim 10 wherein said resource is affiliated with 
another resource, wherein a policy decision for said other resource is received from said 
remote source and stored in said local memory. 

12. (Canceled) 

13. (Currently Amended) The method of Claim 4510 wherein said notification identifies 
resources affected by said change. 

14. (Currently Amended) The method of Claim 4 310, wherein 

receiving said notification further comprises storing an updated version of said policy 
decision in said local memory, wherein said third request is evaluated using said 
updated ve rsion of said policy decision, wherein said notification ake comprises 
an said updated version of said policy decision and wherein said updated version 
of said policy decision is based on said change. 

15. (Currently Amended) The method of Claim 4310 further comprising: , wherein 

receiving said notifica tion further comprises marking said policy decision subject to said 
change , wherein ; and r e questing an updated version of said policy decision is 
requested from said remote source in response to a subs e quent said third request 
for said resource. 

16. (Currently Amended) The method of Claim 10 further comprising: 

sending a message to said remote source, said message requesting updates to 
policy decisions stored in said local memory. 

17. (Original) The method of Claim 10 further comprising: 

receiving information that identifies a period of time said policy decision is valid. 

18. (Currently Amended) The method of Claim 10 further comprising: 

receiving from said remote source a condition associated with said policy definition, 
wherein said condition is enforced locally. 
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19. (Currently Amended) A computer-usable medium having computer-readable program code 
embodied therein for causing a computer system to perform a method of controlling access 
to resources, said method comprising: 

storing in local memory a policy decision for a first resource, said policy decision 
received from a remote source of policy definitions, said policy decision based on 
a policy definition governing access to said first resource and on requestor 
identifying information provided to said source; 

receiving a first request for access to said first resource, said request comprising said 
requestor identifying information;-and 

evaluating said first request using said policy decision stored in said local memory 
inst e ad of referring said request to said oourco for evaluation; 

receiving a notification from said remote source that said policy decision in said local 
memory is affected by a change in said policy definition: 

receiving a second request for access to said first resource: and 

evaluating said second request based on said notification . 

20. (Currently Amended) The computer-usable medium of Claim 19 wherein said first resource 
is affiliated with another resource, wherein a policy decision for said other resource is 
received from said remote source and stored in said local memory. 

21. (Canceled) 

22. (Currently Amended) The computer-usable medium of Claim 19 wherein said computer- 
readable program code embodied therein causes said computer system to perform said 
method further comprising: 

sending a message to said remote source, said message requesting updates for policy 
decisions stored in said local memory. 

23. (Currently Amended) The computer-usable medium of Claim 19 wherein a period of time 
said policy decision is valid is also received from said remote source and stored locally. 

24. (Currently Amended) The computer-usable medium of Claim 19 wherein a condition 
associated with said policy definition is also received from said remote source and stored 
locally, wherein said condition is enforced locally. 
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25. (Currently Amended) The computer-usable medium of Claim 19 wherein said computer- 
readable program code embodied therein causes said computer system to perform said 
method further comprising: 

receiving a first request for access to a second resource, said first request comprising said 

requestor identifying information; 
providing said requestor identifying information to a said remote source of a policy 



d e finition that governs access to said second resource ; 
receiving from said remote source a policy decision for said second resource, 
said policy decision for said second resource based on a said policy definition that 

governs access to said second resource and said requestor identifying 

information; and 

storing said policy decision for said second resource in said local memory, wherein a 
subs e quent second request for said second resource is evaluated using said policy 
decision stored in said local memory. 
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